Binary Planting Vulnerability in ASPECT Configuration Toolset by ABB
CVE-2024-13946
What is CVE-2024-13946?
A vulnerability exists in ABB's ASPECT configuration toolset, whereby dynamic link libraries (DLLs) are not digitally signed during the loading process. This security flaw exposes devices to the risk of binary planting during device commissioning, potentially allowing malicious actors to execute unauthorized code. Affected products include the ASPECT-Enterprise, NEXUS Series, and MATRIX Series, all of which are vulnerable in versions prior to 3.*. Users are urged to implement mitigation strategies to secure their environments against possible exploitation.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
ASPECT-Enterprise Linux 0 <= 3.*
MATRIX Series Linux 0 <= 3.*
NEXUS Series Linux 0 <= 3.*
References
CVSS V4
Timeline
Vulnerability published
Vulnerability Reserved
